Repository navigation
fix(dumpkit): pcap output drops the input's snaplen, thiszone and sigfigs (#1165) - #1168
Merged
Merged
Conversation
…figs (#1165) The PCAP engine now passes the input global header's thiszone, sigfigs and snaplen to Extractor._open_output, and PCAPIO._dump_header writes them instead of the Header defaults (snaplen 262144). The engine unit test that pinned the old _open_output arguments is updated.
Owner
Author
|
Cross-review verdict on
|
Contributor
|
Coverage: 88.88% (unit tier, Python 3.14,
Per-file detail: the |
JarryShaw
added a commit
that referenced
this pull request
Oct 7, 2026
Seven new entries and one extension in docs/source/changelog/1.5.0.rst, the regenerated CHANGELOG.md, and the process.rst entry-count pin re-measured (193 -> 200). The opening snapshot now cites 319 issues and pull requests up to #1195.
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
make pylint,make mypy,make isort) — ran pylint/mypy on the two changed source files only: no new messages on changed lines, no mypy errors in them; not the make targetsmake testpasses, and a test case covers the change — ran only the modules listed belowdocs/source/changelog/and regeneratedCHANGELOG.md, if the change is user-visible — N/A, added centrally after the waveWhat is the purpose of your pull request?
fix— corrects a defectfeat— adds a featureperf— changes performance, not behaviourrefactor— changes neither behaviour nor performancetest— tests onlydocs— documentation onlyci— workflows or build toolingrelease— bumps the version or rolls up a distributionchore— anything elseDescription of your pull request and other information
Closes #1165. The PCAP engine passes the input header's
thiszone,sigfigsandsnaplentoExtractor._open_output, andPCAPIO._dump_headerhands them toHeader(which already accepts them asmake()keywords).test_runtime_engines.pypinned the old_open_outputarguments and is updated.Sweep, every
examples/captures/*.pcap+http6.cap, default engine,format='pcap': before 1/17 byte-identical (16 differ only at header bytes 16–19); after 17/17.Tests: new
tests/foundation/test_pcap_output_header_fields_unit.py(in.pcap rewritten to thiszone -3600 / sigfigs 7 / snaplen 1514: whole file, split mode, zero frames). Without the fix:3 failed; with:3 passed. Alsotest_runtime_engines.py5 passed,test_extraction_pcap_output_unit.py7 passed,test_extraction.py22 passed,dumpkit/test_common_unit.py14 passed,integration/test_files_output_naming.py4 passed,tests/project389 passed, 1 skipped.